Manager, Cyber Security Response and Business Resilience

2 months ago


Sydney, Australia Challenger Limited Full time

Key responsibilities:

Business Resilience framework

work with all areas of Challenger to ensure quality Cyber, business resilience plans are in place, fit for purpose and periodically tested and refreshed.Continue to enhance Cyber playbooks, Impact Assessments and DR processes, practices, and testing regimes to ensure risk is effectively managed and Challenger’s continued compliance with regulatory requirements.Review the business resilience program with a strategic and risk-based lens to enhance capability and improve business resilience.Execute a strategic uplift program of work intended to enhance people engagement, overall testing approach and procedures, tools, and processes that ultimately drive quality data and compliance.Assist business owners and the crisis management team in ensuring accuracy, practicality, and exhaustiveness of their BCP/DR and Cyber documentation.Manage annual tests, associated preparation, and co-ordination activities with a range of business units.Chair of the Cybersecurity Incident Response Team (CIRT), and management of relevant simulations and tabletop exercises to be executed by the CMT.Other Business Resilience and Cyber duties as required.

Crisis Simulations– conduct annual crisis simulation with CMT, LT and Board and material service providers.

Disaster Recovery – oversee the regular testing of Challenger and service providers Disaster Recovery (DR) sites and back up recovery scenarios to ensure effective and well exercised (DR) processes for on-prem, hybrid and cloud services

Training / Education – train staff and leaders on crisis management, business resilience and cyber simulations and event management.

Compliance – ensure Challenger is compliant with relevant regulatory obligations including managing to the introduction of CPS230 and maintain compliance with CPS234, GS007 & CPS/SPS232 Audit work and APRA/ASIC/SOCI Act requirements regarding Cyber resilience.

Risk Management:

Ensure Business Resilience and Cyber incidents and risks are addressed in a timely manner in line with the operational risk framework and BRiskWise timeframes.Report any exceptions to the ERMC, GRC and Board.Liaising with internal and external audit functions to ensure timely management and completion of audit processes. Assist in agreement of internal and external audit remediation commitments, and track any such commitments through to timely completion.Liaise with and educate wider business stakeholders to ensure proper representation and consideration of technology risk.Other risk and compliance activities as directed.

Key Capabilities including Knowledge & Skills required:

Stakeholder management – being able to manage senior level stakeholders from the across the business, including Board and supply chainBusiness Resilience capabilities align to industry standard frameworks such as ISO 22301, NIST CSF, CPS234, ISO27001, and GS007.Excellent written and verbal communication skillsCrisis Management planning and testing programs (Preferred not mandatory) Risk Management and Operational Resilience Experience (Preferred not mandatory) As applicable to the role, a working knowledge of the corporate regulatory environment, governance principles, corporate accountability and conduct frameworks and the process for managing risk.Experience in identifying, assessing, evaluating, and managing risks within business environment and specifically cyber resilience.

Prior experience required:

At least 5 years working in the Information Security industry, preferably in a financial services environmentISO 22301 compliant BCP certification (Preferred not mandatory)Understanding of CPS230 and CPS / SPS 232 and Service Provider Business ContinuityWorking knowledge of IS control standards and frameworks, including ISO27001, NIST CSF, and audit report types such as SOC 1, SOC 2, ASAE3402, etc.Proactive in seeking and communicating opportunities to improve risk management outcomes in terms of day-to-day role responsibilities.

#LI-SA1

#LI-Challenger



  • Sydney, Australia Challenger Limited Full time

    Join us as our Business Resilience and Cyber Response ManagerAre you ready to enhance our business resilience and cyber security incident responsecapabilities?Fantastic opportunity to join as our Business Resilience and Cyber Security response subject matter expert partnering with senior stakeholders across the organisation.You’ll own and manage all...


  • Sydney, Australia The Star Entertainment Group Full time

    The Star Entertainment Group (TSEG) is a publicly listed company on the ASX. Our purpose is to create fun at trusted destinations and our aim is to deliver sustainable outcomes for our guests, our Team Members, the communities in which we exist and our shareholders. We do this by providing entertainment, gaming, and leisure experiences in a safe,...


  • Sydney, Australia SustainRecruit Full time

    **Classification**: Tech **Job Location**: - Sydney NSW**Contract Type**: Full Time **Salary**: $220,000 - $270,000 + Super + Bonus **Company**: Join a leading financial services firm that has gone from strength to strength, known for delivering great long-term results with a fantastic working culture. This renowned financial services institution had...


  • Sydney Central Business District, Australia Peoplebank Full time

    Location: - Sydney CBD- Job Type: - Permanent- Posted: - 8 days ago- Contact: - Aparna Sharma- Discipline: - Security / Cyber Security - Reference: - 254581- **ASX Listed company**: - ** Macquarie Park location - Work flexibility offered (2-3 days from home)**: We are looking to hire an experienced **Cyber Security Manager for** one of our premier...


  • Sydney, Australia NSW Government -Corporate Services Full time

    **About Us** Transport for NSW is the lead agency of the NSW Transport cluster. Our role is to lead the development of a safe, efficient, integrated transport system that keeps people and goods moving, connects communities and shapes the future of our cities, centres and regions. We work with several government agencies to coordinate road, rail, bus and...


  • Sydney, Australia OFX Full time

    **Company Description** Hi.** We’re OFX, a global provider of online, international payment services. We solve the complexity of moving money and enable better decisions. Headquartered in Sydney with offices worldwide, we’re a customer-focused business that is all about inspiring customer confidence. At OFX, you’ll have the opportunity to reach beyond...


  • Sydney, Australia NSW Government -Department of Customer Service Full time

    **Cyber Security Advisor (Training & Resilience Stream)** - ** Role type**: Ongoing, full-time opportunity - ** Salary**: DCS Clerk Grade 7/8, annual base salary starting at $101,947 plus employer’s contribution to superannuation and annual leave loading - ** Location**:Sydney **About Us**: The Department of Customer Service (DCS) is transforming the way...

  • Cyber Security Lead

    1 week ago


    Sydney, Australia QBE Full time

    Primary Details Time Type: Full time Worker Type: Employee- Location: Sydney- Type: Permanent, full time The opportunity A Lead Consultant in Cyber Security will work to ensure QBE remains safe, secure, and resilient. This intellectually challenging and highly influential role is part of a Group Cyber Security Consulting team accountable for safeguarding...

  • Cyber Security Lead

    4 hours ago


    Sydney, Australia Interface Agency Full time

    Sydney CBD / Hybrid- 12 Month Contract- Competitive Rates- About this role:- Global insurance company - Flexible working environmentThis client is a leading global insurance and reinsurance company. They specialise in providing a diverse range of insurance products and services, including property and casualty insurance, specialty lines, workers...


  • Sydney, Australia Reserve Bank of Australia Full time

    Job no 497664 Type Open-ended - Flexible arrangement Location Sydney Category Banking & Settlements Advertised 06 Apr 2023 Closes 27 Apr 2023 AUS Eastern Standard Time **_We are looking for the next Manager for the Business Services Group, Payment Settlement department. _** This role is part of the Business Services Group, Payments Settlements department....

  • Cyber Security Lead

    1 month ago


    Sydney, Australia Big Picture Medical Full time

    **IT** **/** **Full Time****: This is an incredibly exciting time to join the business and get involved with advanced and innovative product builds. As a Security Architect you will Be responsible for cyber security across our cloud business platform, product development stack, and lifecycle activities. You’ll design and implement security structures to...


  • Sydney, Australia Qantas Airways Limited Full time

    Multiple opportunities to join our Group Cyber Defence area! - Be part of a new team that values great cyber security principles and practices - Permanent opportunity with Hybrid WFH model based at our Head Office in Mascot At Qantas, we represent Australia to the world. Our diverse country is known for its unique spirit, mateship, and a can-do attitude....


  • Sydney, Australia NSW Government -Department of Customer Service Full time

    **Role: Cyber Security Analyst** **Role type: Ongoing, Full-time opportunity** **Salary: DCS clerk grade 7/8, annual base salary starting at $106,025 plus employer’s contribution to superannuation and annual leave loading** **Location: Sydney** **About Us**: The Department of Customer Service (DCS) is transforming the way NSW Government agencies interact...


  • Sydney Central Business District, Australia Clicks IT Recruitment Full time

    Initial Contract until April of 2024 Payrate - $800-1000 per day Exc Super We are seeking an experienced Cyber Security Analyst to one of our public-sector clients. As a Senior Cyber Security Analyst, you will play a crucial role in our client's Cyber Uplift program, aimed at improving the compliance and maturity of the client and its cluster agencies. This...


  • Sydney, Australia West Recruitment Full time

    - Circa $260k package- Get in on the ground floor- High growth organisation!- Sydney CBD locationYour New Employer:West Technology is partnering with a new joint venture company in the energy sector that is backed by highly successful companies that operate within Australia as well as Europe. Being a completely greenfields organisation, the successful...

  • Cyber Security Lead

    4 weeks ago


    Sydney, Australia Protecht Group Full time

    Protecht is redefining the way the world thinks about risk. Our cloud-based SaaS platform - Protecht.ERM - is what makes us really stand out. It’s one of the most comprehensive, flexible and dynamic risk management solutions available today. **Join us at Protecht!** We are seeking an exceptional Cyber Security professional with a commercial focus with...


  • Sydney, Australia OFX Full time

    Job DescriptionPurpose of your roleThe newly created Cyber Security Officer role will be an integral member of the Cyber Security team at OFX, driving and leading change within the team, and working across a wide range of projects and platforms. You will be responsible for driving and leading the development and implementation of cyber security initiatives,...

  • Cyber Security Manager

    2 months ago


    Sydney, Australia Qantas Group Full time

    Multiple opportunities to join our Group Cyber Defence area! Be part of a new team that values great cyber security principles and practices Permanent opportunity with Hybrid WFH model based at our Head Office in Mascot At Qantas, we represent Australia to the world. Our diverse country is known for its unique spirit, mateship, and a can-do...


  • Sydney, Australia Qantas Full time

    Multiple opportunities to join our Group Cyber Defence area! Be part of a new team that values great cyber security principles and practicesPermanent opportunity with Hybrid WFH model based at our Head Office in Mascot At Qantas, we represent Australia to the world. Our diverse country is known for its unique spirit, mateship, and a can-do attitude....


  • Sydney, Australia Charterhouse Full time

    Excellent opportunity for senior Security professionals with aspirations to work towards the executive suite as you will be engaging with C level on a regular basis and operate at a strategic level. The ability to communicate technical terminology into business risks is essential and your communication style should be collaborative to see you successful in...